Security log analysis and threat hunting
Analyze SSH auth logs to detect brute force attack patterns
Analyze Apache access logs for web application attacks
Analyze Windows Event Logs for lateral movement indicators
Analyze firewall/proxy logs to identify DDoS attack patterns